Description
An issue was discovered in Croc through 9.6.5. The shared secret, located on a command line, can be read by local users who list all processes and their arguments.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2457 | An issue was discovered in Croc through 9.6.5. The shared secret, located on a command line, can be read by local users who list all processes and their arguments. |
Github GHSA |
GHSA-7g3v-4ggr-xvjf | Croc may expose secret to local users |
References
History
Tue, 24 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-24T18:31:10.115Z
Reserved: 2023-09-20T00:00:00.000Z
Link: CVE-2023-43621
Updated: 2024-08-02T19:44:43.676Z
Status : Modified
Published: 2023-09-20T06:15:10.950
Modified: 2024-11-21T08:24:29.060
Link: CVE-2023-43621
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA